Skip to content

Open nowPosted today

Principal OT Product Security Architect

Dematic310 open roles

Where
Atlanta GA United States
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowPrincipal OT Product Security ArchitectDematic · Atlanta GA United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Dematic's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Dematic postings stay open a median of 29 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 33.9%30 days
This job: posted today

Dematic median: 29 days open

The posting

As a technical leader of OT Product Security architecture for Dematic you will be critical to the advancement of security throughout the company, enabling the success and growth of the business in an environment of increasing demands for comprehensive and robust product security. Under the leadership of the Chief Product Security Architect, you will provide strategic and expertly informed technical security guidance to the product development, execution, sales, and support organizations across Dematic. You will assist in defining and implementing a broad and detailed technical strategy for security that encompasses all Dematic OT products. You will play a crucial role in ensuring the development of truly secure products and the operation of those products in a robustly secure environment by providing best-in-class architectural guidance and vision, while passionately pursuing personal and organizational excellence in the field of security. You will collaborate with technology leadership and engineering teams to both define and implement the vision and strategy of the Product Security organization. You will inspire, guide, and support our development, execution, and customer-facing teams as they continuously progress toward greater maturity with respect to security knowledge and practice. You will be relied upon as an essential resource to proactively and efficiently defend our systems and data from attack, while ensuring that the security of our products meets and exceeds all relevant regulatory requirements. As an invaluable member of a highly collaborative organization that is dedicated to serving with the utmost in excellence and integrity, you will be ever growing in technical expertise and the skills necessary to equip our team to protect our organization, our customers, and our communities.

We offer:

  • Career Development
  • Competitive Compensation and Benefits
  • Pay Transparency
  • Global Opportunities

Learn More Here: https://www.dematic.com/en-us/about/careers/what-we-offer/

Dematic provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.

The base pay range for this role is estimated to be $147,600 - $184,500 at the time of posting. Final compensation will be determined by various factors such as work location, education, experience, knowledge, and skills.

Tasks and Qualifications:

What you will do in this role:

The Principal OT Product Security Architect will provide technical leadership to ensure Dematic products and solutions are secure by design and protect customer supply chain operations. The scope encompasses system-wide cybersecurity across OT/ICS, warehouse automation equipment, machine controls, robotics, software, networks, edge systems, and cloud-connected environments. The role will collaborate with Product Management, R&D, Software and Controls Engineering, IT, Customer Service, and regional teams to embed cybersecurity throughout the product and solution lifecycle.

  • Define and maintain OT cybersecurity architecture, requirements, standards, and reference architectures for Dematic products and solutions.
  • Lead security architecture and technical design reviews across OT, software, controls, networking, and cloud environments.
  • Define secure network architectures, including segmentation, zones/conduits, firewalls, industrial DMZs, secure remote access, and OT-to-cloud connectivity.
  • Integrate secure-by-design and DevSecOps principles into product and system development lifecycles.
  • Define cybersecurity requirements for products, systems, software, embedded components, and customer deployments.
  • Lead or support threat modeling, attack-surface assessments, vulnerability assessments, penetration testing, and security architecture assessments.
  • Establish risk-based approaches for OT vulnerability remediation, including compensating controls where patching may impact safety, availability, reliability, or operations.
  • Define requirements for OT security monitoring and platforms and their integration with customer SOC/SIEM/MDR environments.
  • Translate applicable cybersecurity standards and regulations into technical requirements, including IEC 62443, NIST CSF, NIST SP 800-82, ISO 27001, and EU Cyber Resilience Act (CRA).
  • Support product certification, conformity assessments, audits, customer security reviews, and cybersecurity evidence development.
  • Perform and support OT cybersecurity assessments of Dematic and customer environments and provide practical remediation strategies.
  • Partner with Engineering, Product Security, Infrastructure, and Operations teams to develop secure architectures throughout the product lifecycle.
  • Provide technical expertise during OT cybersecurity incidents and support secure recovery and resilience strategies.
  • Mentor cybersecurity, software, controls, and engineering teams on OT cybersecurity architecture and secure design practices.
  • Evaluate emerging OT cybersecurity technologies and contribute to Dematic's long-term OT cybersecurity architecture and capability roadmap.

What we are looking for:

  • Bachelor's or Master's degree in Cybersecurity, Computer Science, Computer Engineering, Electrical Engineering, Information Technology, or related field, or equivalent experience.
  • 8+ years of cybersecurity, OT/ICS security, product security, network security, systems engineering, or related experience, with demonstrated experience designing or assessing OT cybersecurity architectures.
  • Experience with industrial automation, robotics, warehouse automation, manufacturing, control systems, or other OT environments.
  • Strong understanding of OT/ICS architecture, industrial networks, PLCs, HMIs, SCADA, robotics, segmentation, firewalls, VPNs, and secure remote access.
  • Experience applying cybersecurity principles across complex hardware, software, and integrated systems.
  • Knowledge of vulnerability management, penetration testing, threat modeling, security monitoring, and risk-based remediation in OT environments.
  • Working knowledge of networking, Windows/Linux, cloud environments, and scripting/automation such as Python or PowerShell.
  • Knowledge of IEC 62443, NIST CSF, NIST SP 800-82, ISO 27001, and/or applicable regulatory requirements such as the EU CRA.
  • Strong ability to translate cybersecurity risks and regulatory requirements into practical architecture, engineering requirements, and controls.
  • Strong communication, technical writing, consulting, and stakeholder management skills.
  • Ability to influence technical decisions across engineering and business teams without direct authority.
  • Preference for and ability to thrive in highly collaborative work environments.
  • Passionate and quick learner.
  • Dedicated, highly motivated, energetic and relentless pursuer of quality and successful outcomes that benefit the broader team, organization, and community.
  • Preferred certifications: CISSP, GICSP, GRID, GCIP, Security+, Network+, ISA/IEC 62443 (IC32/IC33), or equivalent.
  • Ability to travel occasionally to customer sites and Dematic facilities.
  • Individual contributor with the ability to support the team in a lead role.

Location & Authorization: This is a hybrid role requiring proximity to one of our U.S. offices (Grand Rapids MI, Atlanta GA, Plano TX). Applicants must be authorized to work in the U.S. without the need for current or future sponsorship.

#LI-DP1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Dematic's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Dematic's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Dematic's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.